CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3263 | CVE-2001-0446 | Candidate | IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL. | Proposed (20010524) | MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese | Frech> XF:ibm-wcs-view-jsp(6308) | CONFIRM:http://www-4.ibm.com/software/webservers/appserv/doc/ | v3024/EfixWeb3024.html | Comments are cryptic. | View |
92 | CVE-1999-0092 | Candidate | Various vulnerabilities in the AIX portmir command allows local users to obtain root access. | Proposed (19990623) | ACCEPT(2) Baker, Bollinger | MODIFY(1) Frech | NOOP(1) Ozancin | Frech> XF:ibm-portmir | View |
2677 | CVE-2000-1110 | Candidate | document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of the web server by sending a nonexistent command to the program. | Proposed (20001219) | ACCEPT(1) Baker | MODIFY(1) Frech | NOOP(2) Cole, Wall | Frech> XF:ibm-netdata-reveal-path(5599) | View |
2735 | CVE-2000-1168 | Candidate | IBM HTTP Server 1.3.6 (based on Apache) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long GET request. | Proposed (20001219) | ACCEPT(2) Baker, Cole | MODIFY(1) Frech | NOOP(1) Wall | REVIEWING(1) Christey | Frech> XF:ibm-http-server-dos(5577) | Christey> Consult Troy Bollinger on this one. | View |
3645 | CVE-2001-0839 | Candidate | ibillpm.pl in iBill password management system generates weak passwords based on a client"s MASTER_ACCOUNT, which allows remote attackers to modify account information in the .htpasswd file via brute force password guessing. | Modified (20050528) | MODIFY(1) Frech | NOOP(5) Armstrong, Bishop, Cole, Foat, Wall | Frech> XF:ibillpm-cgi-insecure-password(7352) | View |
Page 161 of 20943, showing 5 records out of 104715 total, starting on record 801, ending on 805